High severity8.0NVD Advisory· Published May 18, 2022· Updated Jun 17, 2026
CVE-2021-42852
CVE-2021-42852
Description
A command injection vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow an authenticated user to execute operating system commands by sending a crafted packet to the device.
Affected products
11(expand)+ 5 more
- (no CPE)
- (no CPE)range: unspecified
- (no CPE)range: unspecified
- (no CPE)range: unspecified
- (no CPE)range: unspecified
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- iknow.lenovo.com.cn/detail/dc_200017.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.